PDA

View Full Version : download has caused problems



shamstar
2007-09-10, 20:04
Hello people,

I downloaded a torrent file from the following:

thepiratebay.org/tor/3752153/Auction.Auto.Bidder.v6.1.552-TE

I scanned it with my outdated norton and it came up clean so i executed the exe and it seemed to run fine, then the pc played up and froze, so i rebooted and my Taskbar and Start button dissapeared after a few seconds, then reappeared and this went on for a while, i rebooted in safe mode and removed the downloaded prog, but the problem is still there.

I have a hijackthis log and a spybot log, but will wait to see what you good people have to say before posting them.

In Safe Mode my Taskbar and Start button are fine.

Regards

Shamstar

shamstar
2007-09-11, 02:58
update:

I ran spybot several times under safe mode and found the following would keep reappearing:

7FaSSt - i ended up deleting the associated registry keys then followed the steps here...

http://support.microsoft.com/kb/310353/EN-US/

so far everything seems back to normal.

shamstar
2007-09-11, 11:34
Ok, so I spoke too soon :oops:

As soon as I use windows exporer the desktop icons disappear as does the taskbar and start button.

They flick back on after a second, but then go again, not to return. Using winxp task manager utility, I can run explorer, bringing everything back, but then it goes again.

Any ideas?

shamstar
2007-09-11, 15:55
hijack log:

Logfile of HijackThis v1.99.1
Scan saved at 09:36:14, on 11/09/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\NewsBin\nbpro.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Documents and Settings\shamstar\Desktop\antivirus\virus remove\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr6/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.co.uk
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.ntlworld.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr6/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr6/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.co.uk
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr6/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by ntl:
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - <default> - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Reg.lnk = ?
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &ieSpell Options - res://C:\Program Files\ieSpell\iespell.dll/SPELLOPTION.HTM
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Check &Spelling - res://C:\Program Files\ieSpell\iespell.dll/SPELLCHECK.HTM
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DAP\dapextie2.htm
O8 - Extra context menu item: Download All Links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Lookup on Merriam Webster - file://C:\Program Files\ieSpell\Merriam Webster.HTM
O8 - Extra context menu item: Lookup on Wikipedia - file://C:\Program Files\ieSpell\wikipedia.HTM
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra 'Tools' menuitem: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra button: (no name) - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra 'Tools' menuitem: ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Run DAP - {669695BC-A811-4A9D-8CDF-BA8C795F261C} - C:\PROGRA~1\DAP\DAP.EXE
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\PROGRA~1\Skype\Phone\IEPlugin\SKYPEI~1.DLL
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.ntlworld.com/
O15 - Trusted Zone: http://www.myspace.com
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10/StagingUI.cab55579.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://creative.com/su/ocx/15015/CTSUEng.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) - http://zone.msn.com/BinFrameWork/v10/ZBuddy.cab55579.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by102fd.bay102.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/binframework/v10/ZPAChat.cab55579.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.johannrain-softwareentwicklung.de/EN/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1098555411937
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1128451825609
O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/software/launch/alaunch.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://24.16.78.43:71/activex/AxisCamControl.cab
O16 - DPF: {9BDF4724-10AA-43D5-BD15-AEA0D2287303} (MSN Games – Texas Holdem Poker) - http://zone.msn.com/bingame/zpagames/zpa_txhe.cab60231.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://crucial.com/controls/cpcScanner.cab
O16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) - https://h17000.www1.hp.com/ewfrf-JAVA/Secure/HPGetDownloadManager.ocx
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v10/ZIntro.cab56649.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} (YAddBook Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/autocomplete.cab
O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://static.photobox.co.uk/sg/common/uploader_uni.cab
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) - http://zone.msn.com/binframework/v10/StProxy.cab55579.cab
O16 - DPF: {EC5A4E7B-02EB-451D-B310-D5F2E0A4D8C3} (webhelper Class) - http://register.btinternet.com/templates/btwebcontrol023.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://creative.com/su/ocx/15016/CTPID.cab
O16 - DPF: {FF3F0F03-0F01-131A-A3F9-08F02B23E0CC} - http://66.117.37.13/gba1680.exe
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Unknown owner - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe (file missing)

shamstar
2007-09-11, 15:58
Kapsersky Log:

-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Tuesday, September 11, 2007 1:43:31 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.93.1
Kaspersky Anti-Virus database last update: 11/09/2007
Kaspersky Anti-Virus database records: 413032
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: false

Scan Target - My Computer:
C:\
D:\
F:\
G:\
H:\
I:\

Scan Statistics:
Total number of scanned objects: 246314
Number of viruses found: 24
Number of infected objects: 127
Number of suspicious objects: 8
Duration of the scan process: 03:26:27

Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\ISearchTechISTsvc.zip/istsvc.exe Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\ISearchTechISTsvc.zip ZIP: suspicious - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\ISearchTechISTsvc1.zip/istsvc.exe Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\ISearchTechISTsvc1.zip ZIP: suspicious - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\ISearchTechSlotch.zip/istsvc.exe Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\ISearchTechSlotch.zip ZIP: suspicious - 1 skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\ISearchTechSlotch4.zip/istsvc.exe Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\ISearchTechSlotch4.zip ZIP: suspicious - 1 skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\shamstar\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\BTBBHelpInstall.exe/WISE0011.BIN Infected: not-a-virus:RiskTool.Win32.PsKill.1101 skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\BTBBHelpInstall.exe WiseSFX: infected - 1 skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\BTBBHelpInstall.exe WiseSFX Dropper: infected - 1 skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley1byjas.exe/WISE0019.BIN Infected: Trojan-Downloader.Win32.Small.bke skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley1byjas.exe/WISE0020.BIN Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley1byjas.exe/WISE0021.BIN/stream/data0004 Infected: not-a-virus:AdWare.Win32.ActivShopper.a skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley1byjas.exe/WISE0021.BIN/stream/data0005 Infected: not-a-virus:AdWare.Win32.ActivShopper.a skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley1byjas.exe/WISE0021.BIN/stream Infected: not-a-virus:AdWare.Win32.ActivShopper.a skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley1byjas.exe/WISE0021.BIN Infected: not-a-virus:AdWare.Win32.ActivShopper.a skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley1byjas.exe WiseSFX: infected - 6 skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley1byjas.exe WiseSFX Dropper: infected - 6 skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley2byjasbains.exe/WISE0019.BIN Infected: Trojan-Downloader.Win32.Small.bke skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley2byjasbains.exe/WISE0020.BIN Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley2byjasbains.exe/WISE0021.BIN/stream/data0004 Infected: not-a-virus:AdWare.Win32.ActivShopper.a skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley2byjasbains.exe/WISE0021.BIN/stream/data0005 Infected: not-a-virus:AdWare.Win32.ActivShopper.a skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley2byjasbains.exe/WISE0021.BIN/stream Infected: not-a-virus:AdWare.Win32.ActivShopper.a skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley2byjasbains.exe/WISE0021.BIN Infected: not-a-virus:AdWare.Win32.ActivShopper.a skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley2byjasbains.exe WiseSFX: infected - 6 skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\elizabethhurley2byjasbains.exe WiseSFX Dropper: infected - 6 skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\sinstaller.exe/data0002 Infected: not-a-virus:AdWare.Win32.Comet.c skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\dloads\screen savers\sinstaller.exe NSIS: infected - 1 skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\Games\games\stronghold 2\no cd crack\Stronghold 2 crack.exe.zip/Stronghold 2 crack.exe Infected: not-a-virus:Porn-Dialer.Win32.Star skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\Games\games\stronghold 2\no cd crack\Stronghold 2 crack.exe.zip ZIP: infected - 1 skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\Software Downloads\kssetup1.2.exe/Keyhook.dll Infected: not-a-virus:Monitor.Win32.Hooker.c skipped
C:\Documents and Settings\shamstar\Desktop\desk top\Unused Desktop Shortcuts\Software Downloads\kssetup1.2.exe SetupFactory: infected - 1 skipped
C:\Documents and Settings\shamstar\Desktop\wga.rar/RockXP 4.0.exe/data0000.cab/rock.exe/pwdump2/samdump.dll Infected: not-a-virus:PSWTool.Win32.PWDump.2 skipped
C:\Documents and Settings\shamstar\Desktop\wga.rar/RockXP 4.0.exe/data0000.cab/rock.exe/pwdump2/pwdump2.exe Infected: not-a-virus:PSWTool.Win32.PWDump.2 skipped
C:\Documents and Settings\shamstar\Desktop\wga.rar/RockXP 4.0.exe/data0000.cab/rock.exe Infected: not-a-virus:PSWTool.Win32.PWDump.2 skipped
C:\Documents and Settings\shamstar\Desktop\wga.rar/RockXP 4.0.exe/data0000.cab/RockXP4.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped
C:\Documents and Settings\shamstar\Desktop\wga.rar/RockXP 4.0.exe/data0000.cab Infected: not-a-virus:PSWTool.Win32.RAS.a skipped
C:\Documents and Settings\shamstar\Desktop\wga.rar/RockXP 4.0.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped
C:\Documents and Settings\shamstar\Desktop\wga.rar RAR: infected - 6 skipped
C:\Documents and Settings\shamstar\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\shamstar\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\shamstar\Local Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\shamstar\Local Settings\Temp\Perflib_Perfdata_750.dat Object is locked skipped
C:\Documents and Settings\shamstar\Local Settings\Temp\~DF2D4E.tmp Object is locked skipped
C:\Documents and Settings\shamstar\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download Accelerator Plus ( DAP ) 7.0.1.3+CRAK !\Download Accelerator Plus ( DAP ) 7.0.1.3.exe/WISE0021.BIN/dapiebar.dll Infected: not-a-virus:AdWare.Win32.Dap.c skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download Accelerator Plus ( DAP ) 7.0.1.3+CRAK !\Download Accelerator Plus ( DAP ) 7.0.1.3.exe/WISE0021.BIN Infected: not-a-virus:AdWare.Win32.Dap.c skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download Accelerator Plus ( DAP ) 7.0.1.3+CRAK !\Download Accelerator Plus ( DAP ) 7.0.1.3.exe WiseSFX: infected - 2 skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download Accelerator Plus (Dap) 7.0.1.3 Crak !(1).rar/Download Accelerator Plus ( DAP ) 7.0.1.3+CRAK !/Download Accelerator Plus ( DAP ) 7.0.1.3.exe/WISE0021.BIN/dapiebar.dll Infected: not-a-virus:AdWare.Win32.Dap.c skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download Accelerator Plus (Dap) 7.0.1.3 Crak !(1).rar/Download Accelerator Plus ( DAP ) 7.0.1.3+CRAK !/Download Accelerator Plus ( DAP ) 7.0.1.3.exe/WISE0021.BIN Infected: not-a-virus:AdWare.Win32.Dap.c skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download Accelerator Plus (Dap) 7.0.1.3 Crak !(1).rar/Download Accelerator Plus ( DAP ) 7.0.1.3+CRAK !/Download Accelerator Plus ( DAP ) 7.0.1.3.exe Infected: not-a-virus:AdWare.Win32.Dap.c skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download Accelerator Plus (Dap) 7.0.1.3 Crak !(1).rar RAR: infected - 3 skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download.Accelerator.Plus.(.DAP.).7.0.1.3.(osloskop.net)\Download Accelerator Plus ( DAP ) 7.0.1.3+CRAK !\Download Accelerator Plus ( DAP ) 7.0.1.3.exe/WISE0021.BIN/dapiebar.dll Infected: not-a-virus:AdWare.Win32.Dap.c skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download.Accelerator.Plus.(.DAP.).7.0.1.3.(osloskop.net)\Download Accelerator Plus ( DAP ) 7.0.1.3+CRAK !\Download Accelerator Plus ( DAP ) 7.0.1.3.exe/WISE0021.BIN Infected: not-a-virus:AdWare.Win32.Dap.c skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download.Accelerator.Plus.(.DAP.).7.0.1.3.(osloskop.net)\Download Accelerator Plus ( DAP ) 7.0.1.3+CRAK !\Download Accelerator Plus ( DAP ) 7.0.1.3.exe WiseSFX: infected - 2 skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download.Accelerator.Plus.(.DAP.).7.0.1.3.(osloskop.net).rar/Download Accelerator Plus ( DAP ) 7.0.1.3+CRAK !/Download Accelerator Plus ( DAP ) 7.0.1.3.exe/WISE0021.BIN/dapiebar.dll Infected: not-a-virus:AdWare.Win32.Dap.c skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download.Accelerator.Plus.(.DAP.).7.0.1.3.(osloskop.net).rar/Download Accelerator Plus ( DAP ) 7.0.1.3+CRAK !/Download Accelerator Plus ( DAP ) 7.0.1.3.exe/WISE0021.BIN Infected: not-a-virus:AdWare.Win32.Dap.c skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download.Accelerator.Plus.(.DAP.).7.0.1.3.(osloskop.net).rar/Download Accelerator Plus ( DAP ) 7.0.1.3+CRAK !/Download Accelerator Plus ( DAP ) 7.0.1.3.exe Infected: not-a-virus:AdWare.Win32.Dap.c skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\dap\Download.Accelerator.Plus.(.DAP.).7.0.1.3.(osloskop.net).rar RAR: infected - 3 skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\OSS Audio Converter Pro v5.6.0.2 + serial.rar/ossacp(audio converter pro.exe/data0002/data0139 Infected: not-a-virus:AdWare.Win32.HelpExpress skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\OSS Audio Converter Pro v5.6.0.2 + serial.rar/ossacp(audio converter pro.exe/data0002 Infected: not-a-virus:AdWare.Win32.HelpExpress skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\OSS Audio Converter Pro v5.6.0.2 + serial.rar/ossacp(audio converter pro.exe/data0003/NHInstall.exe Infected: not-a-virus:AdWare.Win32.NavExcel skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\OSS Audio Converter Pro v5.6.0.2 + serial.rar/ossacp(audio converter pro.exe/data0003/v2.0.2.cab/NHUninstaller.exe Infected: not-a-virus:AdWare.Win32.NavExcel skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\OSS Audio Converter Pro v5.6.0.2 + serial.rar/ossacp(audio converter pro.exe/data0003/v2.0.2.cab/NHUpdater.exe Infected: not-a-virus:AdWare.Win32.NavExcel skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\OSS Audio Converter Pro v5.6.0.2 + serial.rar/ossacp(audio converter pro.exe/data0003/v2.0.2.cab/NHelper.dll Infected: not-a-virus:AdWare.Win32.NavExcel skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\OSS Audio Converter Pro v5.6.0.2 + serial.rar/ossacp(audio converter pro.exe/data0003/v2.0.2.cab Infected: not-a-virus:AdWare.Win32.NavExcel skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\OSS Audio Converter Pro v5.6.0.2 + serial.rar/ossacp(audio converter pro.exe/data0003 Infected: not-a-virus:AdWare.Win32.NavExcel skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\OSS Audio Converter Pro v5.6.0.2 + serial.rar/ossacp(audio converter pro.exe Infected: not-a-virus:AdWare.Win32.NavExcel skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\OSS Audio Converter Pro v5.6.0.2 + serial.rar RAR: infected - 9 skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\Stronghold 2 Crack Exe.zip/Stronghold 2 crack.exe Infected: not-a-virus:Porn-Dialer.Win32.Star skipped
C:\Documents and Settings\shamstar\My Documents\EDonk\Stronghold 2 Crack Exe.zip ZIP: infected - 1 skipped
C:\Documents and Settings\shamstar\My Documents\eDonkey2 Downloads\New Folder\(Dap) Download Accelerator Plus v7.4.0.1 Cracked Working-Sg.rar/DAP.exe Infected: not-a-virus:AdWare.Win32.Dap.b skipped
C:\Documents and Settings\shamstar\My Documents\eDonkey2 Downloads\New Folder\(Dap) Download Accelerator Plus v7.4.0.1 Cracked Working-Sg.rar RAR: infected - 1 skipped
C:\Documents and Settings\shamstar\My Documents\eDonkey2000 Downloads\(July 2006) Windows Update Genuine Advantage Craked Dll Wga Legitcheckcontrol 1.6.3.4.rar/windows genuine advantage validation v1.6.0.1.exe Infected: Packed.Win32.PolyCrypt.b skipped

shamstar
2007-09-11, 15:59
C:\Documents and Settings\shamstar\My Documents\eDonkey2000 Downloads\(July 2006) Windows Update Genuine Advantage Craked Dll Wga Legitcheckcontrol 1.6.3.4.rar RAR: infected - 1 skipped
C:\Documents and Settings\shamstar\My Documents\eDonkey2000 Downloads\AnyDVD 5.9.5.7 crack.rar/crack.exe Infected: Trojan-Clicker.Win32.Delf.fm skipped
C:\Documents and Settings\shamstar\My Documents\eDonkey2000 Downloads\AnyDVD 5.9.5.7 crack.rar RAR: infected - 1 skipped
C:\Documents and Settings\shamstar\ntuser.dat Object is locked skipped
C:\Documents and Settings\shamstar\ntuser.dat.LOG Object is locked skipped
C:\Program Files\DAP\DAPIEBar.dll Infected: not-a-virus:AdWare.Win32.Dap.c skipped
C:\Program Files\Norton AntiVirus\Quarantine\0BBB4545.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\2FF9230D.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
C:\Program Files\Norton AntiVirus\Quarantine\2FF9230D.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
C:\Program Files\Norton AntiVirus\Quarantine\2FF9230D.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
C:\Program Files\Norton AntiVirus\Quarantine\2FF9230D.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
C:\Program Files\Norton AntiVirus\Quarantine\2FF9230D.zip ZIP: infected - 4 skipped
C:\Program Files\Norton AntiVirus\Quarantine\2FF9230D.zip Crypt.Quarantine: infected - 4 skipped
C:\Program Files\Norton AntiVirus\Quarantine\315A6447.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\316E6031.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\32BE44BF.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\32C842B4.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\32E53C94.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\32EC108D.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\32EF3A89.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\32F9387E.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\342C232D.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\34327725.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\34394B1E.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\351A1C26.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\353A7E38.exe/data0006 Infected: Trojan-Downloader.Win32.Zlob.dn skipped
C:\Program Files\Norton AntiVirus\Quarantine\353A7E38.exe NSIS: infected - 1 skipped
C:\Program Files\Norton AntiVirus\Quarantine\353A7E38.exe UPX: infected - 1 skipped
C:\Program Files\Norton AntiVirus\Quarantine\353A7E38.exe Crypt.Quarantine: infected - 1 skipped
C:\Program Files\Norton AntiVirus\Quarantine\364308DF.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\38E451FB.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
C:\Program Files\Norton AntiVirus\Quarantine\38E451FB.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
C:\Program Files\Norton AntiVirus\Quarantine\38E451FB.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
C:\Program Files\Norton AntiVirus\Quarantine\38E451FB.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
C:\Program Files\Norton AntiVirus\Quarantine\38E451FB.zip ZIP: infected - 4 skipped
C:\Program Files\Norton AntiVirus\Quarantine\38E451FB.zip Crypt.Quarantine: infected - 4 skipped
C:\Program Files\Norton AntiVirus\Quarantine\38E77BF7.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
C:\Program Files\Norton AntiVirus\Quarantine\38E77BF7.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
C:\Program Files\Norton AntiVirus\Quarantine\38E77BF7.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
C:\Program Files\Norton AntiVirus\Quarantine\38E77BF7.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
C:\Program Files\Norton AntiVirus\Quarantine\38E77BF7.zip ZIP: infected - 4 skipped
C:\Program Files\Norton AntiVirus\Quarantine\38E77BF7.zip Crypt.Quarantine: infected - 4 skipped
C:\Program Files\Norton AntiVirus\Quarantine\45B46BCD.exe/data0006 Infected: Trojan-Downloader.Win32.Zlob.dn skipped
C:\Program Files\Norton AntiVirus\Quarantine\45B46BCD.exe NSIS: infected - 1 skipped
C:\Program Files\Norton AntiVirus\Quarantine\45B46BCD.exe UPX: infected - 1 skipped
C:\Program Files\Norton AntiVirus\Quarantine\45B46BCD.exe Crypt.Quarantine: infected - 1 skipped
C:\Program Files\Norton AntiVirus\Quarantine\48461D0D.EXE Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\484A4709.Exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\670D28AC.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\6A31450E.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
C:\Program Files\Norton AntiVirus\Quarantine\6A31450E.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
C:\Program Files\Norton AntiVirus\Quarantine\6A31450E.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
C:\Program Files\Norton AntiVirus\Quarantine\6A31450E.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
C:\Program Files\Norton AntiVirus\Quarantine\6A31450E.zip ZIP: infected - 4 skipped
C:\Program Files\Norton AntiVirus\Quarantine\6A31450E.zip Crypt.Quarantine: infected - 4 skipped
C:\Program Files\Norton AntiVirus\Quarantine\6CF873D2.EXE Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\6F5F4C07.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\6F701DF5.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\6F7A1BEA.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\6F806FE3.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\6FB839A6.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\6FD53385.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\70037F53.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\70102744.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\702A7728.exe Infected: Virus.Win32.Parite.b skipped
C:\Program Files\Norton AntiVirus\Quarantine\71C57F16.exe Infected: Virus.Win32.Parite.b skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\WINDOWS\CSC\00000001 Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Downloaded Program Files\btwebcontrol.dll Infected: not-a-virus:Dialer.Win32.BT.a skipped
C:\WINDOWS\Downloaded Program Files\gsda.dll Infected: not-a-virus:Downloader.Win32.SpyGame skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\ACEEvent.evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\drivers\dtscsi.sys Object is locked skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\drivers\sptd2061.sys Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped

Scan process completed.

tashi
2007-09-27, 22:00
Hello.

Because of the volume of posts to your own topic, helpers may have thought you were already being assisted.

For people waiting who have not resolved their problem, we have a sticky topic:
The Waiting Room: Post here if waiting for help longer than four days (http://forums.spybot.info/forumdisplay.php?f=37)

However if members waiting for assistance do not post there, their topic is archived.

If you need the thread re-opened, please send me a private message (pm) and provide a link.

Also, please see this topic: You and Windows, a joint effort (http://forums.spybot.info/showpost.php?p=25290&postcount=4)